logo

The Triple-Headed Dragon: Inside the Three-Cluster Chinese Cyberespionage Campaign Targeting SE Asia

ID: 034809c0-9e3b-5878-95ee-39ef4a07a924

STIX ID: report--034809c0-9e3b-5878-95ee-39ef4a07a924

Feed Name: securityonline.info

Threat Score
90/100

Date Published: 2026-04-02

Date Updated: 2026-04-23

Author: Ddos

...
...

Unit 42 documents a sophisticated, persistent cyberespionage campaign (June–August 2025) targeting a Southeast Asian government organization via three concurrent clusters tied to China-aligned actors; attackers used USB worms, multiple RATs and infostealers, DLL side-loading, and fake TLS headers to evade detection and continuously exfiltrate sensitive data.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.